action.php 7.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236
  1. <?php
  2. class action {
  3. public function __construct() {
  4. $this->db = new db();
  5. }
  6. public function block($ip) {
  7. $dbAction = $this->db->prepare("SELECT count FROM blocklist WHERE ip = ?");
  8. $dbAction->bind_param('i',$ip);
  9. $dbAction->execute();
  10. $dbAction->store_result();
  11. $dbAction->bind_result($count);
  12. $dbAction->fetch();
  13. if($count > 3) {
  14. $this->list($ip);
  15. return true;
  16. };
  17. $dbAction = $this->db->prepare("INSERT INTO blocklist (ip) VALUES (?) ON DUPLICATE KEY UPDATE count = count + 1");
  18. $dbAction->bind_param('i',$ip);
  19. $dbAction->execute();
  20. return true;
  21. }
  22. public function getBlockedClients() {
  23. $list = array();
  24. $dbAction = $this->db->prepare("SELECT ip FROM blocklist WHERE count > 3 ORDER BY ip ASC");
  25. $dbAction->execute();
  26. $dbAction->store_result();
  27. $dbAction->bind_result($ip);
  28. while($dbAction->fetch()) {
  29. array_push($list,$ip);
  30. };
  31. return $list;
  32. }
  33. public function getUser() {
  34. $list = array();
  35. $dbAction = $this->db->prepare("SELECT token, role, description FROM clients ORDER BY role ASC");
  36. $dbAction->execute();
  37. $dbAction->store_result();
  38. $dbAction->bind_result($token,$role,$description);
  39. while($dbAction->fetch()) {
  40. array_push($list,[$token,$role,$description]);
  41. };
  42. return $list;
  43. }
  44. public function addUser($userid,$role,$description) {
  45. $dbAction = $this->db->prepare("INSERT IGNORE INTO clients VALUES (?,?,?)");
  46. $dbAction->bind_param('sss',$userid,$role,$description);
  47. return $dbAction->execute();
  48. }
  49. public function delUser($userid) {
  50. $dbAction = $this->db->prepare("DELETE FROM clients WHERE token = ?");
  51. $dbAction->bind_param('s',$userid);
  52. return $dbAction->execute();
  53. }
  54. public function getWhiteList() {
  55. $list = array();
  56. $dbAction = $this->db->prepare("SELECT ip FROM whitelist ORDER BY ip ASC");
  57. $dbAction->execute();
  58. $dbAction->store_result();
  59. $dbAction->bind_result($ip);
  60. while($dbAction->fetch()) {
  61. array_push($list,$ip);
  62. };
  63. return $list;
  64. }
  65. public function getBlackList() {
  66. $list = array();
  67. $dbAction = $this->db->prepare("SELECT ip FROM blacklist ORDER BY ip ASC");
  68. $dbAction->execute();
  69. $dbAction->store_result();
  70. $dbAction->bind_result($ip);
  71. while($dbAction->fetch()) {
  72. array_push($list,$ip);
  73. };
  74. return $list;
  75. }
  76. public function getList() {
  77. $list = array();
  78. $dbAction = $this->db->prepare("SELECT ip FROM list ORDER BY ip ASC");
  79. $dbAction->execute();
  80. $dbAction->store_result();
  81. $dbAction->bind_result($ip);
  82. while($dbAction->fetch()) {
  83. array_push($list,$ip);
  84. };
  85. return $list;
  86. }
  87. public function getBlockList() {
  88. $list = array();
  89. $dbAction = $this->db->prepare("SELECT ip FROM list UNION SELECT ip FROM blacklist ORDER BY ip ASC");
  90. $dbAction->execute();
  91. $dbAction->store_result();
  92. $dbAction->bind_result($ip);
  93. while($dbAction->fetch()) {
  94. array_push($list,$ip);
  95. };
  96. return $list;
  97. }
  98. private function isListed($ip) {
  99. $dbAction = $this->db->prepare("SELECT ip FROM list WHERE ip = ?");
  100. $dbAction->bind_param('i',$ip);
  101. $dbAction->execute();
  102. $dbAction->store_result();
  103. if($dbAction->num_rows() == 0) {
  104. return false;
  105. }
  106. return true;
  107. }
  108. private function isBlackListed($ip) {
  109. $dbAction = $this->db->prepare("SELECT ip FROM blacklist WHERE ip = ?");
  110. $dbAction->bind_param('i',$ip);
  111. $dbAction->execute();
  112. $dbAction->store_result();
  113. if($dbAction->num_rows() == 0) {
  114. return false;
  115. }
  116. return true;
  117. }
  118. public function isBlocked($ip) {
  119. if($this->isListed($ip)||$this->isBlackListed($ip)) {
  120. return true;
  121. }
  122. return false;
  123. }
  124. private function isWhiteListed($ip) {
  125. $dbAction = $this->db->prepare("SELECT ip FROM whitelist WHERE ip = ?");
  126. $dbAction->bind_param('i',$ip);
  127. $dbAction->execute();
  128. $dbAction->store_result();
  129. if($dbAction->num_rows() == 0) {
  130. return false;
  131. }
  132. return true;
  133. }
  134. private function deListCount($ip) {
  135. $dbAction = $this->db->prepare("SELECT count FROM delist WHERE ip = ?");
  136. $dbAction->bind_param('i',$ip);
  137. $dbAction->execute();
  138. $dbAction->store_result();
  139. $dbAction->bind_result($count);
  140. $dbAction->fetch();
  141. return $count;
  142. }
  143. public function list($ip) {
  144. if($this->isWhiteListed($ip)){
  145. return false;
  146. }
  147. $dbAction = $this->db->prepare("INSERT IGNORE INTO list VALUES (?)");
  148. $dbAction->bind_param('i',$ip);
  149. $dbAction->execute();
  150. return true;
  151. }
  152. public function adminDeList($ip) {
  153. //delist ip
  154. $dbAction = $this->db->prepare("DELETE FROM list WHERE ip = ?");
  155. $dbAction->bind_param('i',$ip);
  156. $dbAction->execute();
  157. //reset delist count
  158. $dbAction = $this->db->prepare("DELETE FROM delist WHERE ip = ?");
  159. $dbAction->bind_param('i',$ip);
  160. $dbAction->execute();
  161. //remove from blacklist
  162. $dbAction = $this->db->prepare("DELETE FROM blacklist WHERE ip = ?");
  163. $dbAction->bind_param('i',$ip);
  164. $dbAction->execute();
  165. return true;
  166. }
  167. public function deList($ip) {
  168. if(!$this->isListed($ip)) { //set true to avoid discovering
  169. return true;
  170. }
  171. //check delisting count
  172. if ($this->delistCount($ip) > 3){
  173. echo "Fatal: ". long2ip($ip) . " delisted to often!\n";
  174. return false;
  175. }
  176. //delist ip
  177. $dbAction = $this->db->prepare("DELETE FROM list WHERE ip = ?");
  178. $dbAction->bind_param('i',$ip);
  179. $dbAction->execute();
  180. //update delist count
  181. $dbAction = $this->db->prepare("INSERT INTO delist (ip) VALUES (?) ON DUPLICATE KEY UPDATE count = count + 1");
  182. $dbAction->bind_param('i',$ip);
  183. $dbAction->execute();
  184. return true;
  185. }
  186. public function blackList($ip) {
  187. $this->deWhiteList($ip);
  188. $this->deList($ip);
  189. $dbAction = $this->db->prepare("INSERT IGNORE INTO blacklist VALUES (?)");
  190. $dbAction->bind_param('i',$ip);
  191. if($dbAction->execute()) {
  192. $this->deWhiteList($ip);
  193. $this->deList($ip);
  194. return true;
  195. };
  196. return false;
  197. }
  198. public function deBlackList($ip) {
  199. $dbAction = $this->db->prepare("DELETE FROM blacklist WHERE ip = ?");
  200. $dbAction->bind_param('i',$ip);
  201. return $dbAction->execute();
  202. }
  203. public function whiteList($ip) {
  204. $this->adminDeList($ip);
  205. $dbAction = $this->db->prepare("INSERT IGNORE INTO whitelist VALUES (?)");
  206. $dbAction->bind_param('i',$ip);
  207. return $dbAction->execute();
  208. }
  209. public function deWhiteList($ip) {
  210. $dbAction = $this->db->prepare("DELETE FROM whitelist WHERE ip = ?");
  211. $dbAction->bind_param('i',$ip);
  212. return $dbAction->execute();
  213. }
  214. }